Security

Imagining the challenges of developers in repressive environments

January 26, 2017

The Guardian Project team spends a lot of time thinking about users. In our work we focus on easy-to-use applications for users in high-risk …

HOWTO: get all your Debian packages via Tor Onion Services

July 31, 2016

Following up on some privacy leaks that we looked into a while back, there are now official Debian Tor Onion Services for getting software packages …

Building the most private app store

June 2, 2016

App stores can work well without any tracking at all Attackers are increasingly seeing app stores as a prime attack vector, whether it is aimed at the …

PanicKit: making your whole phone respond to a panic button

January 12, 2016

Our mobile devices do so many things for us, making it easy to communicate with people in all manners while giving us access to all sorts of …

How to Migrate Your Android App’s Signing Key

December 29, 2015

It is time to update to a stronger signing key for your Android app! The old default RSA 1024-bit key is weak and officially deprecated. What? The …

CipherKit reproducible builds

September 21, 2015

We have been on a kick recently with making our build process support “reproducible builds” aka “deterministic builds”. What is this reproducible …

Building a trustworthy app store that respects privacy

June 2, 2015

One core piece of our approach is thinking about very high risk situations, like Ai Weiwei or Edward Snowden, then making the tools for operating …

Phishing for developers

February 24, 2015

I recently received a very interesting phishing email directed at developers with apps in Google Play. One open question is, how targeted it was: did …

Complete, reproducible app distribution achieved!

February 11, 2015

With F-Droid, we have been working towards getting a complete app distribution channel that is able to reproducibly build each Android app from …

First working test of IOCipher for Obj-C

January 26, 2015

Every so often, we revisit our core libraries in the process of improving our existing apps, and creating new ones. IOCipher has become a standard …